While looking for additional Exchange vulnerabilities in the wake of this year's zero-days, Kaspersky found an IIS add-on that harvests credentials from OWA whenever, and wherever, someone logs in.
source https://www.techrepublic.com/article/new-microsoft-exchange-credential-stealing-malware-could-be-worse-than-phishing/#ftag=RSS56d97e7
0 comments:
Post a Comment